Inspection mode feature comparison
The following table shows which UTM profile can be configured on a flow mode or proxy mode inspection policy. Remember that some UTM profiles are hidden in the GUI, but can be configured by using the FortiOS CLI.
Flow Mode Inspection Policy | Proxy Mode Inspection Policy | |||
UTM Profile | GUI | CLI | GUI | CLI |
Antivirus | Yes (2) | Yes (2) | Yes | Yes |
Application Control | Yes | Yes | Yes | Yes |
CIFS Inspection | No | No | No (1) | Yes |
Data Leak Prevention | No | Yes (3) | Yes | Yes |
DNS Filter | Yes | Yes | Yes | Yes |
Email Filter | No | Yes (4) | Yes | Yes |
ICAP | No | No | Yes | Yes |
Intrusion Prevention System | Yes | Yes | Yes | Yes |
SSL/SSH Inspection | Yes | Yes | Yes | Yes |
VoIP | No | No | Yes | Yes |
Web Filter | Yes (5) | Yes (5) | Yes | Yes |
Web Application Firewall | No | No | Yes | Yes |
- CIFS inspection cannot be configured via GUI.
- Some Antivirus features are not supported in flow mode inspection. See Inspection mode differences for Antivirus on page 401.
- Some Data Leak Prevention features are not supported in Flow mode inspection. See Inspection mode differences for Data Leak Prevention on page 402.
- Some Email filter features are not supported in Flow mode inspection. See Inspection mode differences for Email Filter on page 402.
- Some Web filter features are not supported in Flow mode inspection. See Inspection mode differences for Web Filter on page 403.